职位详情

登录

信息安全顾问
2-3万·13薪
人 · 本科 · 5年及以上工作经验 · 性别不限2025/01/26发布
五险一金年终奖金定期体检专业培训通讯补贴补充医疗保险周末双休带薪年假

万都中心

公司信息
凯捷咨询(中国)有限公司

外资(欧美)/1000-5000人

该公司所有职位
职位描述
Overview:
We are seeking an experienced and proactive Cybersecurity Governance, Risk, and Compliance (GRC) Specialist to support cybersecurity roadmap, regulatory compliance initiatives, and policy localization for our operations in China. The ideal candidate will have a strong technical background in IT and cybersecurity, combined with practical experience in supporting Multi Level Protection Schema (MLPS - 等级保护) assessment and implementing data protection best practices. Fluency in both spoken and written English is essential due to frequent collaboration with global teams.

Key Responsibilities:
1. Governance:
a. Develop, implement, and maintain cybersecurity policies, procedures, and standards tailored to local and international requirements.
b. Localize global cybersecurity policies and standards to align with China’s regulatory and operational environment.
c. Monitor the evolving China cybersecurity laws and regulations, perform necessary gap assessment and take lead on remediation actions
2. Risk Management:
a. Conduct risk assessments, identify vulnerabilities, and propose mitigations for IT and OT environments.
b. Collaborate with stakeholders to address and resolve identified risks.
c. Support the regional third-party risk management program to ensure vendor compliance with cybersecurity requirements.
3. Compliance:
a. Lead and support China’s Multi Level Protection Schema (MLPS - 等级保护) evaluation process, ensuring timely certification in accordance with the local roadmap.
b. Ensure compliance with China’s cybersecurity laws and regulations, including cross-border data transfer (CBDT) requirements.
c. Stay updated on data protection best practices, including data classification and classification, to advise on and implement relevant policies.
d. Support audits and certifications relevant to cybersecurity (e.g., Internal audit, ISO 27001).
e. Handle necessary legal / regulatory mandatory (LRM) submissions.
4. User Awareness and Training:
a. Promote cybersecurity awareness across the organization through localized training programs tailored for Chinese users.
b. Ensure all employees understand and adhere to cybersecurity best practices and policies.

Qualifications:
Basic:
61 Bachelor’s degree in Cybersecurity, Information Technology, or a related field.
61 5+ years of experience in cybersecurity, GRC, or IT risk governance roles.
61 Practical experience supporting Multi Level Protection Schema (MLPS - 等级保护) evaluations.
61 Strong understanding of cybersecurity management domains including but not limited to IAM, Data Protection, Network Security, Incident Response and Management, Secure Asset Management, etc.
61 Familiarity with China’s cross-border data transfer (CBDT) laws and regulations.
61 Fluent in English and Mandarin (spoken and written) is required, and Japanese/Korean is preferred.
Preferred:
61 Professional certifications like CISSP, CISM, CRISC, or CISA.
61 Experience working in multinational organizations or regulated industries.
61 Familiarity with IT/OT security practices and industrial cybersecurity.
61 Excellent collaboration and communication skills with a proactive mindset.

相关职位
网络安全工程师(Splunk,英文流利)2-3万·13薪
安全架构师-微软安全(Azure和Defender)2-3.5万·13薪
五险一金补充医疗保险定期体检
Network/ Security2-3万
汽车云端网络安全运营2-4万
信息技术管理(信息安全)2-3万
查看所有职位
51米多多提醒你:在招聘、录用期间要求你支付费用的行为都必须提高警惕。 以招聘为名的培训、招生,许诺推荐其他工作机会,甚至提供培训贷款,或者支付体检 、服装、押金和培训等费用后才能录用工作的,都属于违法行为,应当提高警惕。一经发现,请立即举报,并向当地公安机关报案。

举报

招聘信息 > 上海招聘 > 运维/技术支持招聘 > 上海网络安全工程师招聘

收藏

热门职位热门城市周边城市